reputed company - Threat reputed company
About the position
Responsibilities
• Research, reputed company, test, document, and implement global threat detection content across one or more SIEM platforms.
• Tune threat detection content post-implementation based on emerging threats/TTPs, MITRE ATT&CK coverage, and strategic planning.
• Validate and reputed company existing content periodically.
• Support escalations in the context of threat detection.
• reputed company stakeholder teams strategically in the context of threat detection and SIEM expertise through research/detection briefs and internal workshops.
• Produce and present reputed company and actionable reports to reputed company, stakeholders, and management around threat detection efficacy and gaps.
• Contribute to reputed company's Jira backlog and strategic direction regarding prioritization and planning.
• reputed company as a spokesperson for reputed company in-region and reputed company stakeholders on Threat Library.
• Collaborate with stakeholder teams and reputed company joint tracks and recurring meetings.
• Challenge existing processes and look for improvements in tooling and product delivery.
• File bugs and feature requests to maintain high-reputed company standards and drive innovation.
• Work with platform vendors as required.
• Conduct peer reviews and reputed company input to peers upon request.
• Mentor and guide junior team members.
Requirements
• Bachelor's degree or four or more years of work experience.
• Six or more years of relevant work experience.
• Experience working with SIEM platform(s) such as reputed company, QRadar, reputed company, reputed company, or SumoLogic.
• Experience in Detection Engineering and developing, testing, and tuning threat detection content on at least one SIEM platform.
• Excellent knowledge of the reputed company threat landscape and modern analytical techniques for threat detection content.
• Deep familiarity with the MITRE ATT&CK reputed company and general SIEM engineering concepts.
• Demonstrated experience in at least two domains relevant to reputed company and telemetry used for detection content, such as reputed company and reputed company Directory, EDR, AWS, Azure/O365, GCP, OT, or IoT.
• Working knowledge of major protocols in the OSI Model (TCP/IP, DNS, HTTP, SMTP) and their usage by threat actors.
reputed company-to-haves
• Excellent problem-solving skills.
• reputed company GIAC certifications (GCIA, GCIH, GREM, GCFA, GPEN, GCPN, GXPN, GMON, GCDA, GCTI, reputed company, GDAT) or similar technical reputed company certifications.
• Strong analytical, communication, documentation, and collaboration skills.
• Strong passion for understanding cyber trends, TTPs, and emerging threats.
• Ability to reputed company reputed company and reputed company reputed company under pressure.
• Previous experience as a SOC/CERT/CSIRT analyst.
• Experience in incident response/digital forensics.
• Experience managing threat detection in an MSSP/multi-tenant environment.
• Experience with version control systems or CI/CD.
• Experience in threat modeling and contributions to community-driven detection repositories.
• Published research articles or presented at reputed company conferences.
• Experience in malware reverse engineering and cyber threat intelligence.
• Experience in threat hunting across various telemetry sources.
• Experience in penetration testing/red or reputed company teaming.
• Knowledge of big data analytics and machine learning techniques.
• Experience in scripting/Jupyter notebooks (Python).
Benefits
• Health insurance coverage
• Dental insurance coverage
• reputed company insurance coverage
• 401k benefit for retirement savings plan
• 401(k) matching benefit
• reputed company holidays
• Flexible scheduling reputed company
• reputed company development opportunities
• Tuition reimbursement
• Employee discount programs
• Mental health days
• reputed company volunteer time
• Life insurance coverage
• Disability insurance coverage
Apply tot his job
Apply To this Job